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Abstract. The schematic CERES method [?] is a recently developed 
method of cut elimination for proof schemata, that is a sequence of proofs 
with a recursive construction. Proof schemata can be thought of as a way 
to circumvent adding an induction rule to the LK-calculus. In this work, 
we formalize a schematic version of the infinitary pigeonhole principle, 
which we call the Non-injectivity Assertion schema (NiA-schema), in 
the LKS-calculus [?], and analyse the clause set schema extracted from 
the NiA-schema using some of the structure provided by the schematic 
CERES method. To the best of our knowledge, this is the first appli¬ 
cation of the constructs built for proof analysis of proof schemata to 
a mathematical argument since its publication. We discuss the role of 
Automated Theorem Proving (ATP) in schematic proof analysis, as well 
as the shortcomings of the schematic CERES method concerning the 
formalization of the NiA-schema, namely, the expressive power of the 
schematic resolution calculus. We conclude with a discussion concerning 
the usage of ATP in schematic proof analysis. 


1 Introduction 

In Gentzen’s Hauptsatz [?], a sequent calculus for first order logic was introduced, 
namely, the LK-calculus. He then went on to show that the cut inference rule 
is redundant and in doing so, was able to show consistency of the calculus. The 
method he developed for eliminating cuts from LK-derivations works by induc¬ 
tively reducing the cuts in a given LK-derivation to cuts which either have a 
reduced formula complexity and/or reduced rank [?]. This method of cut elimina¬ 
tion is known as reductive cut elimination. A useful result of cut elimination for 
the LK-calculus is that cut-free LK-derivations have the subformula property, 
i.e. every formula occurring in the derivation is a subformula of some formula in 
the end sequent. This property allows for the construction of Herbrand sequents 
and other objects which are essential in proof analysis. 


However, eliminating cuts from LK-derivations does have its disadvantages, 
mainly concerning the number of computations steps needed and the size of 
the final cut-free proof. As pointed out by George Boolos in “Don’t eliminate 
cut” [?], sometimes the elimination of cut inference rules from an LK-proof can 
result in an non-elementary explosion in the size of the proof. Though using cut 
elimination, it is also possible to gain mathematical knowledge concerning the 
connection between different proofs of the same theorem. For example, Jean-Yves 
Girard’s application of reductive cut elimination to a variation of Ffirstenberg- 
Weiss’ proof of Van der Waerden’s theorem [?] resulted in the analytic proof 
of Van der Waerden’s theorem as found by Van der Waerden himself. From 
the work of Girard, it is apparent that interesting results can be derived from 
eliminating cuts in “mathematical” proofs. 

A more recently developed method of cut elimination, the CERES method 
[?], provides the theoretic framework to directly study the cut structure of LK- 
derivations, and in the process reduces the computational complexity of deriving 
a cut-free proof. The cut structure is transformed into a clause set allowing for 
clausal analysis of the resulting clause form. Methods of reducing clause set 
complexity, such as subsumption and tautology elimination can be applied to 
the characteristic clause set to reduce its complexity. It was shown by Baaz & 
Leitsch in “Methods of cut Elimination” [?] that this method of cut elimination 
has a non-elementary speed up over reductive cut elimination. 

In the same spirit of Girard’s work, Baaz et al. [?] applied the CERES 
method to a formalized mathematical proof. At the time of applying the method 
to Fiirstenberg’s proof of the infinitude of primes, the CERES method had been 
generalized to higher-order logic [?] and an attempt was made to apply this 
generalized method to to the formal version of Ftirstenberg’s proof. However, 
the tremendous complexity of the higher-order clause set 0 suggested the use of 
an alternative method. Instead of formalizing the proof as a single higher-order 
proof, formalize it as a sequence of first-order proofs enumerated by a single nu¬ 
meric parameter, of which indexes the number of primes assumed to exists. The 
resulting schema of clause sets was refuted by a resolution schema resulting in 
Euclid’s argument for prime construction. The resulting specification was pro¬ 
duced on the mathematical meta-level. At that time no object-level construction 
of the refutation schema existed. 

A mathematical formalizations of Fiirstenberg’s proof requires induction. In 
the higher-order formalization, induction is easily formalized as part of the for¬ 
mula language. However in first-order, an induction rule needs to be added to the 
LK-calculus. As it was shown in [?], Reductive cut elimination does not work 
in the presence of an induction rule in the LK-calculus. Also, other systems [?] 
which provided cut elimination in the presence of an induction rule do so at the 
loss of some essential properties, for example the subformula property. 

3 The individual clauses of the clause set were very large, some containing over 12 
literals, and contained both higher order and first order free variables. Interactive 
theorem provers could not handle these clause sets, nor could a human adequately 
parse the clause set. 
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In “Cut-Elimination and Proof Schemata” [?], a version of the LK-calculus 
was introduced (LKS-calculus) allowing for the formalization of sequences of 
proofs as a single object level construction, i.e. the proof schema , as well as a 
framework for performing cut elimination on proof schemata. Cut elimination 
performed within the framework of [?] results in cut-free proof schemata with 
the subformula property. Essentially, the concepts found in [?] were generalized 
to handle recursively defined proofs. It was shown in [?] that schematic charac¬ 
teristic clause sets are always unsatisfiable, but it is not known whether a given 
schematic characteristic clause set will have a refutation expressible within the 
language provided for the resolution refutation schema. This gap distinguishes 
the schematic version of the CERES method from the previously developed ver¬ 
sions. 

In this work, we continue the tradition outlined above of providing a case 
study of an application of a “new” method of cut elimination to a mathematical 
proof. Though our example is relatively less grand than the previously chosen 
proof it gives an example of a particularly hard single parameter induction. We 
chose the tape proof found in [?,?,?], and generalize it by considering a codomain 
of size n rather than of size two. A well known variation of our generalization 
has been heavily studied in literature under the guise of the Pigeonhole Principle 
(PHP). Our generalization will be referred to as the Non-injectivity Assertion 
(NiA). Though such a proof seems straight forward to formalize within the LKS- 
calculus, without a change to the construction used in [?], there was a forced 
eigenvariable violation. 

After formalizing the NiA as a proof schema (the NiA-schema) we apply the 
schematic CERES method. In our attempt to construct an ACNF schema [?] 
we heavily use Automated Theorem Provers (ATP), specifically SPASS [?], to 
develop the understanding needed for construction of such a schema. SPASS was 
used over other theorem provers mainly due to familiarity. How theorem provers 
were used in our attempt to construct an ACNF schema will be an emphasis of 
this work. As an end result, we were able to “mathematically” express an ACNF 
schema of the NiA-schema to a great enough extent to produce instances of the 
ACNF in the LK-calculus; in a similar way as in the Fiirstenberg’s proof analy¬ 
sis [?]. Though, in our case we have a refutation for every instance (only the first 
few where found in [?]) . It remains an open problem whether a more expressive 
language is needed to express the ACNF of the NiA-schema in the framework 
of [?] . We conjecture that ATP will play an important role in resolving this 
question as well as in future proof analysis using the schematic CERES method. 

The paper is structured as follows: In Sec. [2 we introduce the LKS-calculus 
and the essential concepts from [?] concerning the schematic clause set analy¬ 
sis. In Sec. E2&S we formalize the NiA-schema in the LKS-calculus. In Sec. 
0 we extract the characteristic clause set from the NiA-schema and perform 
normalization and tautology elimination. In Sec. 0 we analysis the extracted 
characteristic clause set with the aid of SPASS. In Sec.0 we provide a (“math¬ 
ematically defined”) ACNF schema of the extracted characteristic clause set. In 
Sec. 0 we conclude the paper and discuss future work. 
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2 The LKS-calculus and Clause set Schema 


In this section we introduce the LKS-calculus which will be used to formalize 
the NiA-schema, and the parts of the schematic CERES method concerned with 
characteristic clause set extraction. We refrain from introducing the resolution 
refutation calculus provided in [?] because it does not particularly concern the 
work of this paper. Though we provide a resolution refutation of the characteris¬ 
tic clause set of the NiA-schema, there is a good reason to believe the constructed 
resolution refutation is outside the expressive power of the current schematic res¬ 
olution refutation calculus. More specifically, the provided resolution refutation 
grows as a function of the free parameter n with respect to a constant change 
in depth, i.e. grows wider faster than it grows deep. For more detail concerning 
the schematic CERES method, see [?]. 


2.1 Schematic language, proofs, and the LKS-calculus 


The LKS-calculus is based on the LK-calculus constructed by Gentzen [?]. 
When one grounds the parameter indexing an LKS-derivation, the result is 
an LK-derivation [?]. The term language used is extended to accommodate 
the schematic constructs of LKS-derivations. We work in a two-sorted setting 
containing a schematic sort u> and an individual sort l. The schematic sort only 
contains numerals constructed from the constant 0 : w, a monadic function 
s(-) : w —> uj and a single free variable, the free parameter indexing LKS- 
derivations, of which we represent using n. 

The individual sort is constructed in a similar fashion to the standard first 
order language [?] with the addition of schematic functions. Thus, t contains 
countably many constant symbols, countably many constant function symbols , 
and defined function symbols. The constant function symbols are part of the 
standard first order language and the defined function symbols are used for 
schematic terms. Though, defined function symbols can also unroll to numerals 
and thus can be of type to n —> ui. The t sort also has free and bound variables 
and an additional concept, extra variables [?]. These are variables introduced 
during the unrolling of defined function ( predicate ) symbols. We do not use 
extra variables in the formalization of the NiA-schema, but they are essential for 
the refutation of the characteristic clause set. Also important are the schematic 
variable symbols which are variables of type oj —> i. Essentially second order 
variables, though, when evaluated with a ground term from the oj sort we treat 
them as first order variables. Our terms are built inductively using constants 
and variables as a base. 

Formulae are constructed inductively using countably many constant predi¬ 
cate symbols (atomic formulae), logical operators V,A,—and 3, as well as 
defined predicate symbols which are used to construct schematic formulae. In this 
work iterated \J is the only defined predicate symbol used, and of which has the 
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following term algebra: 


£v 


»(y) 


s (y) 


V p w = i= 


V p (*) V P W V p ( s (2/)) 


2=0 


0 2=0 
0 


V P(i) => P( 0) 


2=0 


( 1 ) 


From the above described term and formulae language we can provide the in¬ 
ference rules of the LKE-calculus, essentially the LK-calculus [?] plus an equa- 
tional theory e (in our case e v Eq. [1]). This theory, concerning our particular 
usage, is a primitive recursive term algebra describing the structure of the de¬ 
fined function(predicate) symbols. The LKE-calculus is the base calculus for the 
LKS-calculus which also includes proof links which will be described shortly. 

Definition 1 (e-inference rule). 


S[t] 

S[t'] 


(e) 


In the e inference rule, the term t in the sequent S is replaced by a term t' such 
that, given the equational theory e, e | =t = t'. 

To extend the LKE-calculus with proof links we need a countably infinite set 
of proof symbols denoted by Lp, ip, ipi, ipj .... Let S(x) by a sequent with schematic 
variables x, then by the sequent S(t) we use to denote the sequent S(x) where 
each of the variables in x is replaced by the terms in the vector t respectively, 
assuming that they have the appropriate type. Let p be a proof symbol and S(x) 

a sequent, then the expression - is called a proof link . For a variable n : ui, 

proof links such that the only arithmetic variable is n are called n-proof links . 

Definition 2 (LKE-calculus [?]). The sequent calculus LKS consists of the 
rules o/LKE, where proof links may appear at the leaves of a proof. 

Definition 3 (Proof schemata [?]). Let ip be a proof symbol and S[n,x) be 
a sequent such that n : uj. Then a proof schema pair for ip is a pair of LKS- 
proofs ( 7 T,v(k)) with end-sequents S(0,x) and S(k + l,x) respectively such that 
tt may not contain proof links and v(k) may contain only proof links of the form 
_( ip_(k_, a))_ 

S(k, a) 

of ip and assume an identification between the formula occurrences in the end 
sequents of 7 r and v(k) so that we can speak of occurrences in the end sequent 
of ip. Finally a proof schema F is a tuple of proof schema pairs for ipi, ■ ■ ■ ip a 
written as (ipi, ■ ■ ■ ip a ), such that the LKS -proofs for ipp may also contain n- 
proof links to ip 7 for 1 < /3 < 7 < a. We also say that the end sequent of ip\ is 
a the end sequent ofF. 

We will not dive further into the structure of proof schemata and instead 
refer the reader to [?1. We now introduce the characteristic clause set schema. 


and we say that it is a proof link to ip. We call S(n, x) the end sequent 
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2.2 Characteristic Clause set Schema 


The construction of the characteristic clause set as described for the CERES 
method [?] required inductively following the formula occurrences of cut for¬ 
mula ancestors up the proof tree to the leaves. However, in the case of proof 
schemata, the concept of ancestors and formula occurrence is more complex. A 
formula occurrence might be an ancestor of a cut formula in one recursive call 
and in another it might not. Additional machinery is necessary to extract the 
characteristic clause term from proof schemata. A set 17 of formula occurrences 
from the end-sequent of an LKS-proof tt is called a configuration for 7r. A con- 
hguration 17 for 7r is called relevant w.r.t. a proof schema ^ if 7r is a proof in 
F and there is a 7 £ N such that 7r induces a subproof 7r of ^ 4. 7 such that 
the occurrences in 17 correspond to cut-ancestors below 7r [?]. Note that the 
set of relevant cut-configurations can be computed given a proof schema F. To 
represent a proof symbol Lp and configuration 17 pairing in a clause set we assign 
them a clause set symbol (a,x), where a is an arithmetic term. 


Definition 4 (Characteristic clause term [?]). Let tt be an LKS -proof and 
17 a configuration. In the following, by , An and Fc , Ac we will denote 
multisets of formulas of 17- and cut-ancestors respectively. Let r be an inference 
in 7r. We define the clause-set term 0f ,n inductively: 


if r is an axiom of the form rn, Tc, r b An, Ac, A, then 
= {r n ,r c V- An, Ac} 

if r is a proof link of the form - l - —- then define 17' as the 

rn,r c ,rh An,A c ,A 

set of formula occurrences from rn,Tc l~ Aq,Ac and 0f ,n = cl^’’ n [a,u) 
if r is a unary rule with immediate predecessor r' , then 0f ,n = 0f; n 
if r is a binary rule with immediate predecessors ri, r^, then 
• if the auxiliary formulas of r are 17- or cut-ancestors, then 0f’^ = 


0f;° ® 0*f 

• otherwise, 0f’ Q = 0f^ a <g> 0 


Finally, define 0 n ’ a = 0Iff 2 where ro is the last inference in 1 r and 0 n = 6> 7r ’ 0 . 
We call 0™ the characteristic term of tt. 


Clause terms evaluate to sets of clauses by \0\ = 0 for clause sets 0, \0\ ©© 2 ! = 
\0i\ u \02, \01 ® 02 1 = {C o D I c G \0i\,D G |e 2 |}. 

The characteristic clause term is extracted for each proof symbol in a given 
proof schema F, and together they make the characteristic clause set schema for 
F, CL(F). 


3 “Mathematical” proof of the NiA Statement 

In this section we provide a mathematical proof of the NiA statement (Thm. 
[lj . The proof is very close in structure to the formal proof written in the LKS- 
calculus, which can be found in Sec. [4j We skip the basic structure of the proof 
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and outline the structure emphasising the cuts. We will refer to the interval 
{0, • • • ,n — 1} as N„. Let rr/(n) be the following sentence, for n > 2: There 
exists p, q G N such that p < q and f(p) = f(q), or for all ifN there exists a 
y G N such that x < y and f(y) G N n -i- 

Lemma 1. Let f : N —> N„, where n G N, be total, then rrf(n) or there exists 
p, q G N such that p < q and f(p) = f(q). 

Proof. We can split the codomain into N„_i and {n}, or the codomain is {0}. 

Lemma 2. Let f be a function as defined in Lem. [7] and 2 < m < n, then if 
rrf(m) holds so does rrf(m — 1). 

Proof. Apply the steps of Lem. |T] to the right side of the or in rr/(m). 

Theorem 1. Let f be a function as defined in Lem. [7], then there exists i,j G N 
such that i < j and f(i) = f{j). 

Proof. Chain together the implications of Lem. [5] and derive rr/(2), the rest is 
trivial by Lem. [TJ 

This proof makes clear that the number of cuts needed to prove the statement 
is parametrized by the size of the codomain of the function /. The formal proof 
of the next section outlines more of the basic assumptions being that they are 
needed for constructing the characteristic clause set. 


4 NiA formalized in the LKS-calculus 

In this section we provide a formalization of the NiA-schema whose proof schema 
representation is ((w(0),a;(n + 1)), + 1))}. Cut-ancestors will be marked 

with a * and i?-ancestors with **. Numerals (terms of the oj sort) will be marked 
with T . We will make the following abbreviations: EQf = 3p3q(p < q A f(p) = 
f(q)), I(n) =Wx3y(x < yA\l"=-gf{y) = i), I s (n) =Vx3y(x < yhf{y) =n) and 
AX eq (n) = /(/3) = n*,f(a) =n* b /(/?) = f(a) (the parts of AX eq (n) marked 
as cut ancestors are always cut ancestors in the NiA-schema). 


H c < c* /(a) =0 1- /(a) = 0* 

- A : r 


s(/3) < a* \- p < a AX eq (0) 

- A : r 


Vi/(i) = 0 h 1(0)* 

Vxf(x) = 01 ~EQf 


1(0)* \- EQ f 


Fig. 1. Proof symbol w(0) 
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< P(n + 1 ) 

J(n+T)* I - EQ f 


Vx \Z n +-} /(x) = Tl-I(n + 1)* 


vx v r=u /(x) = 4 h e «/ 


Fig. 2. Proof symbol u;(n + 1) 


sU3) < a* h p < cx AX eq (0) 

- A : r 

/ s (0)* \- EQ f 


Fig. 3. Proof symbol ip(0) 


f( 7) = 0** 1- 
/(7) = 0* , 


/( 7 ) = n 4- 1** h 
/(7) = n + 1*, 


max (a, fi) < -y** |- 
<* < 7* 


- A : r 

max(cx, /3) < -7** |- 

£ < 7* 

J(rT+T)** h I(n)* , J s (rT^FT)* 


¥>(™) 

7(7T) * I- SQy 

/(7TTT)** 1 - /(“)*, J S (7TTT)* 

-^^- cu t 

I(n + 1 )** 1 - EQ f , I s (n + 1 )* 


s(/3) < <** h 0 < . 


AX eg (n + 1) 


7(n + 1)** h EQ f ,I s (n + 1)* 


I s (n + 1)* h EQ f 


I(n + 1)** h EQf, EQf 
KJT+ T)** 1- EQf 


Fig. 4. Proof symbol tj}(n + 1) 





5 Characteristic Clause set Schema Extraction 

The outline of the formal proof provided above highlights the inference rules 
which directly influence the characteristic clause set schema of the NiA-schema. 
Also to note are the configurations of the NiA-schema which are relevant, namely, 
the empty configuration 0 and a schema of configurations fHji) = \/x3y(x < 
U A VlLo f(v) = *)■ Thus, we have the following: 

CL mA ( 0) = 0^ 0 (O) = { 0)© /(a) = o} (2a) 

d+’ n ®{ 0) = 0^."(5)(o) = {s(>9) <ah ®/(a) = 0, f(/3) = 0 h} (2b) 

CL NiA (ii+T)=e“’®(TI+T) = {( c Z^' n ( 7 r + T hti+I)©l-a<a)el-V' 2 f /(“)=*} ( 2 c) 

c ;'/',«(™+T) (^rpX)=@'/ , ' n ("+T) (Ti+T) = {(c^, n (") (n)©(s(/3)<ah®/(a)=n+r,/(/3)=n+Ti-)) 
®(maa;(Q!,/3)<7l-a<7)®(maa;(Q;, / 0)<7l-/3<7)} 

_ ( 2 d) 

In the characteristic clause set schema CLNiA(n + 1) presented in Eqj2] tau¬ 
tologies are already eliminated. Evaluation of CL^iAin + 1) yields the following 
clause set C(n): 

(Cl) ha<a, (C2) max(a, f3) < 7 b a < 7 , (C3) max(a , /3) < 7 b /3 < 7 
(C4 0 ) /(/3) = 0, /(a) = 0, s(/3) < a b 


(C4„) /(/3) = n L /(a) = n, s(/3) < a b 
(C5) h / (a) = 0, • • • , / (a) = n 

6 Clausal Analysis Aided by ATP 

The result of characteristic clause set extraction for proof schemata is a se¬ 
quence of clause sets representing the cut structure (See Sec. 0), rather than a 
single clause set representing the cut structure. Thus, unlike applications of the 
first-order CERES method to formal proofs [?], where a theorem prover is used 
exclusively to find a refutation, we can only rely on theorem provers for sug¬ 
gestions. Essentially, we need the theorem provers to help with the construction 
of two elements of the schematic resolution refutation: the induction invariants 
and the term language. 

For this clause set analysis, we exclusively used SPASS [?] in the “out of the 
box mode”. We did not see a point to working with the configurations of SPASS 
being that for sufficiently small instances of C(n ) it found a refutation, and 
our goal was not to find an elegant proof using the theorem prover, but rather 
a refutation with the aid of the theorem prover; the “out of the box mode” 
was enough for this goafl Though as a side note, refutations found by SPASS 

4 Also, using “out of the box mode” allows for ease of reproducibility of our results 
when using the same version of SPASS. 
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were not the smallest, the resolution refutation that SPASS gave as output for 
C(4]@ used (C 5) in the refutation tree 1806 times. The resolution refutation we 
provide used (C5) only 65 times. Though, it is not that our final refutation is 
wildly different, SPASS ended up deriving clauses using derived clauses which 
could easily be derived from the initial clause set. 

An essential feature we were looking for in the refutations found by SPASS 
were sequences of clauses which mimic the stepcase construction of the induction 
axiom, i.e. \/x(ip(x) —>• ip(x + 1)). An example of such a sequence from the 
refutation of (7(4), of which will be the basis of Thm. [2j is as follows: 


1 [0 : Inp\ IHI =» eq(f(U), 3) , eq{f(U),2) , eq(f(U),l) , eq(f(U),0)* 
2795[0 : MRR : 1.3,2764.0] |||| => eq(f(U), 3) , eq(f(U), 2) , eq(f(U), 1) 
3015[0 : MRR : 2795.2, 2984.0] |||| => eq(f (U), 3), eq{f (U), 2) 

3096 [0 : MRR : 3015.1, 3065.0] j|j| eq(f(U), 3) 


Fig. 5. Recursive sequence found in the refutation of C( 4). 


Essentially, if we where to interpret the initial clause as defining a function 
(a function whose domain is the natural numbers and whose codomain is the 
set [0,n]) we see that at first we assume the function has a codomain of size n, 
and than we derive that it cannot have a codomain of size n, but rather of size 
n — 1, and so on, until we derive that its codomain is empty, contradicting the 
original assumption, that is that the codomain is non-empty (i.e. clause (C 5)). 
This pattern can be found in other instances of the refutation of C(n). 

This sequences seems to be an essential part, even the only part, needed to 
define a recursive refutation of C(n), though if and only if, C{n) is refutable with 
a total induction, of which such a refutation has not been found and is unlikely 
to exists. Something which is not completely apparent in SPASS refutation for 
C(n), n < 4, is the gap (in numbering) between clause 1 and clause 2795 in 
Fig. [51 To derive clause 2795 for clause 1 in one step we need to first derive the 
following clause: 

2764[0 : MRR : 2714.1,2749.1] |||| eq{f{U),0)* => 

of which deriving is almost as difficult as deriving the sequence of Fig. [5] Essen¬ 
tially to derive clause 2764, the SPASS refutation eludes to the need of an inner 
recursion bounded by the outer recursion. Essentially, we start from a clause of 
the following form: 

2272[0 : Res : 955.3,159.1] || || eq(f(U), 0)* , eq(f(V), 1)* , eq(f(W), 2)* , 
eq(f(X),3)* => 

stating that the codomain is empty and derive that this implies some element 
k is not in the codomain. Clause 2272 is essential for Lem. [7] and is one of the 
clauses of Lem. [I] 

5 See Sec. 19.61 
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Up to this point we have an idea of the overall structure of the refutation, 
but so far, we have not discussed the term structure and unifiers used by SPASS. 
Essentially, how was the recursive max term construction of Def. [5] found? Look¬ 
ing at the following two derived clauses from C{ 3) and C( 4) we see that the 
nesting of the max term grows with respect to the free parameter: 

20[0 : Res : 15.0,4.0] |j|| =>- le(U, max (max (max (V, U), IT), X)) 

54[0 : Res : 19.0,4.0] j|| =>• le(U,max(max(max(max(V,U),W),X),Y)) 
However, in clause 20 and 54 the associativity is the opposite of Def. [5] We found 
that the refutation of Sec. [7] is easier when we switch the association of the max 
term construction. Also, both clause 20 and 54 do not contain successor function 
(s(-)) encapsulation of the variables while Def. [5]does. The s(-) terms were added 
because of the clauses C4j. The literal s(a) < /3 enforces the addition of an s(-) 
term anyway during the unification. This can be see in Lem. [3] and Cor.[l][2l & 

[3] However, we have not been able to prove the necessity of these max function 
constructions, nor find a refutation without them. 

The result of all these observations was Lem. 2] After proving that the Lem. 

[4] clause set is indeed derivable from C(n) using resolution, we constructed it 
to see what the SPASS refutation looked like for C(4). We abbreviate the term 
max(max(max(s(xo), s(xi)), s(x 2 )), s(x 3 )) by m(x 4 ): 


1 : eq(f{m{xi)), 2) V eq(f(m{x 4 )), 1) V eq{f(m(x 4 )), 0) 

2 : -~eq(f(x 2 ), 2) V eq{f{m{x 4 )), 1) V eq{f(m(x 4 )), 0) 

3 : ->eq(f(xi), 1) V eq{f(m(x 4 )),2) V eq{f(m(x 4 )), 0) 

4 : -ieq{f(x 0 ), 0) V eq{f{m(x 4 )), 2) V eg(/(m(z 4 )), 1) 

5 : ^eq{f(x 2 ), 2) V ->eq(f(xi), 1) V eq(f{m(x 4 )), 0) 

6 : ~>eq{f{x 2 ), 2) V ->eq{f(x 0 ), 0) V eq(f(m(x 4 )), 1) 

7 : -ieq{f(xi), 1) V ->eq(f{x 0 ), 0) V eq(f(m(x 4 )), 2) 

8 : ~~eq(f(x 1 ), 1) V ~^eq{f{x 0 ), 0) V ^eq(f(x 2 ), 2) 

Fig. 6. Clause set of Lem. [4] for C(3). 


Feeding this derived clause set to SPASS for several instances aided the 
construction of the well ordering of Def. [5] and the structure of the resolution 
refutation found in Lem. [7] 

7 Refutation of the NiA-schema’s Characteristic Clause 
Set Schema 

In this section we provide a refutation of C(n) for every value of n. We prove this 
result by first deriving a set of clauses which we will consider the least elements 
of a well ordering. Then we show how resolution can be applied to this least 
elements to derive clauses of the form f(a) = i b for 0 < i < n. The last step is 
simply to take the clause (C5) from the clause set C[n) and resolve it with each 
of the /(a) = i b clauses. 
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Definition 5. We define the primitive recursive term m(k,x,t), where x is a 
schematic variable and t a term, as follows: {m(k + 1,3;, t) => 
m(k,x,max(s(xk+i),t)) ; to( 0 , f) => t} 

Definition 6. We define the resolution rule res(a,P ) where cr is a unifier and 
P is a predicate as follows: 

n\-p*,A n',p**\-A’ 

- res(a, P) 

Ila , U' a b An, A! a 

The predicates P* and P** are defined such that P**a = P*a = P. Also, there 
are no occurrences of P in II'a and P in Act. 

This version of the resolution rule is not complete for unsatisfiable clause sets, 
but simplifies the outline of the refutation. 

Lemma 3. Given 0 < k and 0 < n, the clause b t < m(k,x,t) is derivable by 
resolution from C (n). 

Proof. Let us consider the case when k = 0, the clause we would like to show 
derivability of is b t < m(0,t), which is equivalent to the clause b t < t, 
an instance of (Cl). Assuming the lemma holds for all m < k + 1, we show 
that the lemma holds for k + 1. By the induction hypothesis, the instance 
b max(s(xk+i), t') < m(k,x,max(s(xk+i),t')) is derivable. Thus, the follow¬ 
ing derivation proves that the clause b t' < m(k + l,Xk+i,t'), where t = 
max(s(xk+i),t') for some term t' is derivable: 


(■ IH) (C 3) 

b P max((3, <5) < 7 b 5 < 7 

- = -res(cr, P ) 

b t < m(k,x,max(s(xk+i),t)) 
- e 

b t < m{k + 1, x, t ) 

P = max(s(xk+i),t) < m(k,x,max(s(xk+i),t)) 
cr = {0 <- s(x k + 1),7 t- m(k,x,max(s(x k +i),t)),S <- t} 


□ 

See Sec. [9] for proofs of the following three corollaries. 

Corollary 1 . Given 0 < k,n, the clause b s(a;fe+i) < m(k,x,max(s(xk+i),t)) 
is derivable by resolution from C (n). 

Corollary 2. Given 0 < k and 0 <n, the clause f(xk+ i) = *, 
f(m(k,x,max(s(xk+i),t))) = i b for 0 < i < n is derivable by resolution from 
C(n). 
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Corollary 3. Given 0 < k and 0 < n, the clause f{xk+ i) = i, f(m(k , Xk, s(xfc+i))) 
i h for 0 < i < n is derivable by resolution from C[n). 

Definition 7. Given 0 < n, —1 < k < j < n,a variable z, and a bijective 
function b : N n —> we define the following formulae: 

k j 

c b(k,j, z) = /\ f(x b (i)) = b(i) h \J f(m(n,x,z)) =b(i). 

i— 0 i=k-\- 1 

The formulae Cb(—1, —1, z) = \~, and Cb(—l,n,z) = h V"=o f( z ) = * f or a ^ 
values of n . 

Lemma 4. Given 0 < n, — 1 < k < n and for all bijective functions b : —> 

N n . the formula Cb(k,n,z) is derivable by resolution from C(n). 

Proof. See Sec. 19.41 Greatest lower bounds of Def. [9| 

Definition 8. Given 0 < n, 0 < k < j < n, and a bijective function b : N n —> 
we define the following formulae: 

k j 

c 'b( k ,j) = A f&i+i) = b{i) \~ V f(. m ( k ’Xk,s{xk+i)) = b(i). 

2—0 i=k+1 

Lemma 5. Given 0<n,0<k<n and for all bijective functions b : N„ —> N„. 
the formula c' b (k,n ) is derivable by resolution from C(n). 

Proof. See Sec. 19.51 

Definition 9. Given 0 < n we define the ordering relation < n over A n = 
{(i,j)\i<j AO < i,j < nM,j & N} s.t. for (i,j),(l,k) G A n , (■ i,j)< n {l,k ) 
iff i,h,l < n, j < n, l <i, k < j, and i = l <-> j 7 ^ k and j = k ■(-)■ i l. 

Lemma 6. The ordering < n over A n for 0 < n is a complete well ordering. 

Proof. Every chain has a greatest lower bound, namely, one of the members of 
A n , (i, n) where 0 < i < n, and it is transitive, anti-reflexive, and anti-symmetric. 

The clauses proved derivable by Lem. [5] can be paired with members of A n 
as follows, c' b (k,n) is paired with ( k,n ). Thus, each c b (k,n ) is essentially the 
greatest lower bound of some chain in the ordering < n over A n . 

Lemma 7. Given 0 < k < j < n, for all bijective functions b : the 

clause c b (k,j ) is derivable from C(n). 

Proof. We will prove this lemma by induction over A n . The base cases are the 
clauses c b (k,n ) from Lem. [5] Now let us assume that the lemma holds for all 
clauses c' b (k,i ) pairs such that, 0 <k<j<i<n and for all clauses c' b (w,j ) 
such that 0 < k < w < j < n, then we want to show that the lemma holds for 
the clause c b (k. j). We have not made any restrictions on the bijections used, we 
will need two different bijections to prove the theorem. The following derivation 
provides proof: 
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(IH[k,j + 1]) (IH[k + l,k+ 1]) 

n b (k),\- A b (k,j),P b (j + 1) n b ’(k), f(x b '( k+ 1 )) = b'(k+ 1) b 

n b (k),n b f{k) b A b {k,j ) 

n b (k) b A b {k,j) 
c b (k,j) 


P b (k+ 1) = f(m(k, x k , s(a:fc+i))) = 6(/c + 1), 77 fc (fc) = Ai= 0 /(®6(*)) = &(*)> 


3 

A b (k,j)= Y f(m(k,xk,s(xk+i))) = b(i) t 

i=k +1 


= {a:b'(fe+i) «- m(fc, a:*,, s(x fc+ i))} 

We assume that 6 '(fc + 1) = b(j + 1 ) and that 6 '(x) = 6 (x) for 0 < x < k. 
Theorem 2. Given n > 0, C(n) derives h. 

Proof. By Lem. [3 The clauses /(x) = 0 h , ■ •• , /(x) = n h are derivable. Thus, 
we can prove the statement by induction on the instantiation of the clause set. 
When n = 0, the clause (C5) is b /(x) = 0 which resolves with /(x) = 0 b 
to derive b. Assuming that for all n' < n the theorem holds we now show 
that it holds for n + 1. The clause (C5) from the clause set C{n + 1) is the 
clause (C5) from the clause set C(n) with the addition of a positive instance of 
b f{a) = (n + 1). Thus, by the induction hypothesis we can derive the clause 
b /(a) = (n + 1). By Lem. |T]we can derive /(x) = (n + 1) b, and thus, resolving 
the two derived clauses results in b. 

8 Conclusion 

At the end of the introduction, we outlined some essential points to be addressed 
in future work, i.e. finding a refutation which fits the framework of [?] or showing 
that it is not possible and constructing a more expressive language. Concerning 
the compression (see Sec. ED, knowing the growth rate of the ACNF can help 
in the construction of a more expressive language for the refutations, and will 
be part of the future investigation. However, there is an interesting points which 
was not addressed, namely extraction of a Herbrand system. The extraction of 
Herbrand system is the theoretical advantage this framework has over the pre¬ 
viously investigated system [?for cut elimination in the presence of induction, 
but without a refutation within the expressive power of the resolution calcu¬ 
lus, the method of [?] cannot be used to extract a Herbrand system from our 
refutation. We plan to investigate the extraction of a Herbrand system for the 
NiA-schema given the current state of the proof analysis. Development of such a 
method can help find Herbrand systems in other cases when the ACNF-schema 
cannot be expressed in the calculus provided in [?]. 

6 The schematic CERES method has the subformula property. 
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9 Appendix 


9.1 Proof of Lem. [T] 

(LemOU) (C2) 

b P max(0 , S) < 7 b 0 < 7 

- 3 - res(a 7 P ) 

b s(xfe+i) < m(k 7 x,max(s(x k +i),t)) 

P = max(s(xk+i),t ) < m(k,x,max(s(xk+i),t)) 
cr = {0 <r- s(xk- (-i ),7 m(fc,x,mox(s(xfe + i),t)),<5 e-i} 


□ 

9.2 Proof of Cor. [2] 

(Cord]) (C4j) 

bP /(a) = *,/(/3) = *, s(a) < P b 

-—- ret 

f(xk+ 1 ) = i, f{m(k, xk,max(s(xk+i),t))) = i b 

P = s(xfc+i) < m(k,Xk,max(s(xk+i),t)) 
cr = {a Xfc + i,/3 e- m(fc,xfc,max(s(xfc + i),t))} 


□ 

9.3 Proof of Cor. [3] 

(LemlU) (C4j) 

b P /(a) = i, f(0) = i, s(a) < 0 b 

-—- T 

f(x k + 1 ) = i,f{m(k, x, s(xk+i))) = i b 

P = s(xfc + i) < m(k, Xk, s(xk+i)) 
a = { a <- Xk+i,0 <- m(fc,Xfe,s(xfc+i)))} 


□ 
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9.4 Proof of Cor. [4] 


We prove this lemma by induction on k and a case distinction on n. When n = 0 
there are two possible values for k, k = 0 or k = —1. When k = — 1 the clause is 
an instance of (C5). When k = 0 we have the following derivation: 


(C5) 

cb(-l,l,y) 


( CorEJ* 6(0), k <— 0]) 
f(x i) = t( 0 ),/(moa:(s(xi), 2 )) = 6(0) b 

c&(0,l,z) 


res(cr, P) 


P = f(max(s(xi),z)) = 6(0) 

17 = {?/1— maa;(s(a;i), 2 :)} 

By (CorEJi 6(0), k <— 0]) we mean take the clause that is proven derivable 
by Cor. [2] and instantiate the free parameters of Cor. 0 i.e. i and k, with the 
given terms, i.e. 6(0) and 0. Remember that 6(0) can be either 0 or 1. We will 
use this syntax through out the dissertion. When n > 0 and k = — 1 we again 
trivially have (C5). When n > 0 and k = 0, the following derivation suffices: 


(C 5) 

c b (-l,n,y) 


(CorHI* &(0), k <— 0]) 

f(x 1 )=b(0),f(max(s(x 1 ),z)) = b(0)h 

- rest a, F) 

Cb(0, n, z) 


P = f (max(s(xi), z)) = 6(0) 
cr = {?/ •<— max(s(xi),z)} 

The main difference between the case for n = 1 and n > 1 is the possible 
instantiations of the bijection at 0. In the case of n > 1, 6(0) =0 V- ■ • V 6(0) = n. 
Now we assume that for all w < k + 1 < n and n > 0 the theorem holds, we 
proceed to show that the theorem holds for k + 1. The following derivation will 
suffice: 


(IH) 
Cb(k, n, y) 


(CorEJ? b(k + 1)]) 
f(xk+ 1 ) = b(k + 1), P b 

c b (k + 1, n, z ) 


P = f(m(k, Xk, max(s(xk+ 1 ), t))) = b(k + 1) 
er = {y <- max(s(x k +i),z)} 


□ 
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9.5 Proof of Lem. [5] 


We prove this lemma by induction on k and a case distinction on n. When n = 0 
it must be the case that k = 0. When k = 0 we have the following derivation : 


((75) (Cor\5[i <— 0, k <— 0]) 

c f)(—1; 0, y) f{x\) = 0,/(s(xi)) = 0 b 


p = f{s(x i)) =0 

(j = {y <- S(®l)} 

Remember that 6(0) can only be mapped to 0. When n > 0 and k = 0, the 
following derivation suffices: 


((75) ((7or|3[j t— 6(0), k t— 0]) 

Cb(~ 1, n, y ) /(ad) = 6(0), /(s(xi)) = 6(0) b 


res(cr, P) 


c b(0, n) 

P = f( s (xi)) = 6(0) 

o’ = {?/1- s(a;i)} 

The main difference between the case for n = 0 and n > 0 is the possible 
instantiations of the bijection at 0. In the case of n > 0, 6(0) =0 V - • • V 6(0) = n. 
Now we assume that for all w < k the theorem holds, we proceed to show that 
the theorem holds for k + 1. The following derivation will suffice: 


(IH) (CorEJ* b(k + 1)]) 

Cb{k, n, y) f (xk+i) = b(k + 1), P b 


c b (k + l,n, z) 

P = f(m(k,x k ,max(s(xk+i),t))) = b(k + 1) 
o’ = {y max(s(x k +i),z)} 




□ 

9.6 SPASS Refutation of C(n): Instance Four 

The refutation provided in this section is almost identical to the output from 
SPASS except for a few minor changes to the syntax to aid reading. 

1 [0 : Inp] HD => eq(f(U), 3) , eq(f(U), 2) , eq(f(U), 1) , eq(f(U), 0)* 

2[0 : Inp} HU => le{XJ,U)* 
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3[0 : Inp] || |j le(max(U, V), W)* =>■ le(U,W ) 

4[0 : Inp] (HI le(max(U, V), W)* => le(V,W) 

5[0 : Inp] (HI le(s(U),V)*+ , eq(f(U), 0)* , eq(f(V),0)* => 

6[0 : Inp] || |j le(s(U), V) * + , eq{f{U), 1)* , eq(f(V), 1)* =>• 

7[0 : Inp\ HU le(s(U),V)*+ , eq(f(U),2)* , eq(f(V),2)* => 

8[0 : Inp] 1111 le(s{U),V)*+ , eq(f(U),3 )* , eq(f(V), 3)* => 

9[0 : Res : 2.0,4.0] |||| => le(U,max(V,U)) 

10[0 : Res : 9.0,4.0] |||| => le(U,max(V,max(W,U))) 

12[0 : Res : 2.0, 3.0] |||| => le(U,max(U,V )) 

13[0 : Res : 9.0,3.0] |||| le(U,max(V,max(U,W))) 

15[0 : Res : 12.0,3.0] |||| => le(U,max(max(U,V),W)) 

16[0 : Res : 12.0,4.0] |||| => le(U,max(max(V,U),W)) 

19[0 : Res : 15.0,3.0] |||| le(U,max(max[rnax(U,V),W),X)) 

20[0 : Res : 15.0,4.0] ||| le(U,max(max(max(V,U),W), X)) 

23[0 : Res : 2.0, 8.0] |||| eq(f(U), 3) , eq(f(s(U)), 3)* =► 

25[0 : Res : 10.0,8.0] |||| eq(f(U) ,3) , eq(f(max(V,max(W, s(U)))), 3)* => 

27[0 : Res : 12.0,8.0] |||| eq{f{U), 3) , eq(f(max(s(U), V)), 3)* => 

28[0 : Res : 15.0,8.0] |||| eq{f{U), 3) , eq(f(max(max(s(U),V),W)),3)* => 

42[0 : Res : 2.0, 7.0] |||| eq(f(U), 2) , eq(f(s(U)), 2)* =► 

43[0 : Res : 9.0, 7.0] |||| eq(f(U), 2) , eq(f(max(V, s(U))),2)* => 

44[0 : Res : 10.0,7.0] |||| eq{f{U), 2) , eq(f(max(V,max(W, s(U)))), 2)* => 

50[0 : Res : 12.0,7.0] |||| eq{f{U),2) , eq(f(max(s(U),V)),2)* => 

52[0 : Res : 16.0,7.0] |||| eq{f{U),2) , eq(f(max(max(V, s(U)), W)), 2)* => 
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54[0 : Res : 19.0,4.0] ||| =>■ le(U,max(max(max(max(V,U),W), X),Y)) 

59[0 : Res : 20.0,7.0] |||| eq{f{U), 2), eq(f(max(max(max(V,s(U)),W),X)),2)* =>■ 

69[0 : Res : 2.0,6.0] |||| eg(/(J7), 1) , eq(f(s(U)),l)* =► 

70[0 : Res : 9.0,6.0] |]|] eq(f(U), 1) , eq(f(max{V,s(U))),l)* =► 

74[0 : i?es : 13.0,6.0] |j|| eq{f(JJ),l) , eq(f(max(V, max(s(U), W))), 1)* =4> 

79[0 : .Res : 16.0,6.0] M eq(f(U),l) , eq(f(max(max(V, s(U)), W)), 1)* =>• 

89[0 : i?es : 2.0, 5.0] |||| eq(f(U), 0) , eq(f(s(U)),0)* => 

90[0 : Res : 9.0, 5.0] |||| eq(f{U), 0) , eq{f{max(V, s{U))),0)* => 

98[0 : Res : 12.0,5.0] |||| eq{f(U),0) , eq(f(max(s(U), V)), 0)* =>• 

123[0 : Res : 1.3,89.1] || || eq(f(U), 0) =► eq(f(s(U)), 3) , eq(f(s(U)), 2) , eq(f(s(U)), 1) 

159[0 : Res : 54.0,8.0] |||| eq(f(U), 3) , eq(f(max(max(max(max(V,s(U)),W),X),Y)),3)* => 
196[0 : Res : 1.3,90.1] |||| eq{f{U), 0) =>• eq(f{max{V, s{U))),3) 
eq(f(max(V, s(U))), 2) , eq(f(max(V, s(U))), 1) 

197[0 : Res : 1.3,98.1] |||| eq{f{U),0) =>• eq{f{max{s{U),V)),3) 
eq(f(max(s(U), V)), 2) , eq(f(max(s(U),V)), 1) 

423[0 : i?es : 196.3, 79.1] || || eq(f(U), 0) , eq{f{V), 1) =>• 
eq(f(max(max(W, s(V)), s(U))), 3) , eq(f(max(max(W ., s(V)), s(C/))), 2) 

450[0 : i?es : 197.3, 74.1] || || eq{f(U),0) , eq{f{V), 1) =>• 
eq(f(max(s(U), max(s(V), W))), 3) , eq(f(max(s(U), max(s(V), W))),2) 

955[0:i?es: 423.3, 59.1] |||| eq(f(U), 0) , eq(f(V), 1) , eq(f(W),2) 

=>■ eq(f(max(max(max(X, s(M / )), s(V)), s(U))), 3) 

1009[0:i?es: 450.3,44.1] |||| eg(/(t/),0) , e 9 (/(V), 1) , eg(/(W), 2) 
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=> eq(f(max(s(U),max(s(V),s(W)))),3) 

2272[0 : Res : 955.3,159.1] |||| eq(f(U),0)* , eq{f(V),l)* , eq(f(W),2)* 
eq(f(X),3)* => 

2273[0 : MRR : 1009.3,2272.3] || || eq(f(U), 0) * + , eq(f{V), 1) * 
eq(f(W),2)* =► 

2301[0 : MRR : 450.3,2273.2] |||| eg(/(C/),0) , eg(/(V),l) 

=>■ eq(f(max(s(U), max(s(V), W))), 3) 

2450[0 : Res : 2301.2,25.1] |||| eq(f(U),0)* , eg(/(V),l) * 
eq(f(W),3)* =► 

2459[0 : MiLR : 2301.2, 2450.2] |] || eq(f{U), 0) * + , eq{f(V), 1)* =>• 

2577[0 : MRR : 123.3,2459.1] |||| eq(f(U),0) => eq(f{s(U)), 3) 

eq{f{8(U)),2) 

2578[0 : Mi?i? : 196.3, 2459.1] || || eq(f(U), 0) => 
eq(f(max(V, s(U))),3) , eq(f(max(V,s(U))),2) 

2613[0 : Res : 2578.2,50.1] |||| eq(f(U), 0) , eq(f(V), 2) => eg(/(maa;(s(V), s(U))), 3) 

2615[0 : i?es : 2578.2,52.1] |||| eq(f(U), 0) , eq{f{V), 2) 

=>■ eq(f(max(max(W, s(V)), s(U))), 3) 

2676[0 : Res : 2615.2,28.1] |||| eq(f(U),0)* , eq(f{V),2)* , eq(f(W),3)* => 

2684[0 : Mi?i? : 2613.2, 2676.2] |j || eq(f{U), 0) * + , eq{f{V),2)* =>• 

2714[0 : MRR : 2577.2, 2684.1] |||| eg(/(C/),0) => eq(f(s{U)), 3) 

2715[0 : MRR : 2578.2,2684.1] |||| eg(/(C/),0) => eq{f(max(V,8(U))),3) 

2749[0 : i?es : 2715.1,27.1] |||| eq(f(U),0)* , eg(/(V),3)* => 

2764[0 : Mi?i? : 2714.1, 2749.1] || || eq(f{U), 0)* => 

2795[0 : MRR : 1.3,2764.0] |||| =► eg(/(J7), 3) , eq(f(U),2) , eg(/(J7),l) 
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2796[0:Res: 2795.2,69.1] |||| eq(f(U), 1) =► eq{f(s(U)),3) , eq(f(s(U)), 2 ) 

2797[0 : Res : 2795.2,70.1] |||| eq{f{U), 1) =>• eq(f{max{V, s(U))), 3) 
eq(f (max(V, 2) 

2831 [0 : Res : 2797.2,50.1] |||| eg(/(Z7), 1) , eq{f(V), 2) 

=> eq(f{max(s(V), 3) 

2833[0 : Res : 2797.2,52.1] |||| eg(/(C/),l) , eq(f(V), 2 ) 

=>■ eq(f (max(max(W, s(F)), s(t/))), 3) 

2896[0 : Res : 2833.2,28.1] |||| eq{f(U), 1)* , eg(/(V),2)* , eq(f(W), 3)* => 
2904[0 : MRR : 2831.2, 2896.2] || || eq(f(U), 1) * + , eg(/(V),2)* => 

2934[0 : MRR : 2796.2,2904.1] |||| eq(f{U), 1) eg(/(s(C/)), 3) 

2935[0 : MRR : 2797.2,2904.1] |||| eq{f(U), 1) => eq(f{max{V,8(U))),3) 

2969[0 : Res : 2935.1,27.1] |||| eq{f{U),l)* , eg(/(V),3)* => 

2984[0 : MRR : 2934.1,2969.1] |||| eg(/([/),l)* => 

3015[0 : MRR : 2795.2,2984.0] |||| => eg(/(R),3), eq(f(U),2) 

3016[0 : Res : 3015.1,42.1] |||| eq{f{U), 2) => eq{f{s(U)),3) 

3017[0 : Res : 3015.1,43.1] |||| eq{f{U), 2) => eq{f{max{V,s(U))), 3) 

3050[0 : Res : 3017.1,27.1] |||| eq{f{U), 2)* , eq(f(V), 3)* => 

3065[0 : MRR : 3016.1,3050.1] |||| eq(f(U),2)* => 

3096[0 : MRR : 3015.1,3065.0] |||| => eq(f(U), 3) 

3098[0 : MRR : 23.1,23.0,3096.0] |||| => 

9.7 Growth Rate of Refutation 

Definition 10. Lef Occ(x,r) be defined as the number of times the clause x is 
used in the refutation r. 
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Theorem 3. Let r be the resolution refutation of Thm. [H for the clause set 
C(n), then Occ(C5,r) is the result of the following recurrence relation a(n+ 1) = 
(n + 1) * a[n) + 1 and a(0) = 1. 

Proof. Let us consider the case for the clause set C(0). This is the case when we 
have only one symbol in the function’s range. If we compute the recurrence we 
get a(l) = a(0) +1 = 2 Now let us assume it holds for all m <n and show it hold 
for n + 1. In the proof of Lem. 0 when deriving c(,(0, 0) the literal /(a) = 6(0) 
is in the antecedent for every clause higher in the resolution derivation and it is 
never used in a resolution step . If we remove this clause from the antecedent 
then we have a resolution refutation for the clause C(n), only if we rename the 
schematic sort terms accordingly. To refute C\n + 1) we need to derive n + 1 
distinct c(,(0,0) clauses and resolve them with a single instance of (C 5). Thus, 
we have the equation, Occ(C5 n+1 ,r n+ i) = (n + 1) * Occ(C5 n , r n ) +1 where r n+1 
is the resolution refutation of Thm. [2] for the clause set C(n + 1) and r n is the 
resolution refutation of Thm. [2] for the clause set C\n). Thus, the theorem holds 
by induction. 


□ 


Corollary 4. The recurrence relation a(n) = n ■ a(n — 1) + 1 and a(0) = 1 is 
equivalent to the equation: 



Proof. If we unroll the relation one we get, 



Thus, unrolling the function k times results in the following: 



Now when we set k = n we get, 



□ 
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